ustayready / wnfexec
WNF Code Execution Library Using C#
☆108Updated 4 years ago
Alternatives and similar repositories for wnfexec:
Users that are interested in wnfexec are comparing it to the libraries listed below
- Some scripts to support with importing large datasets into BloodHound☆79Updated last year
- A fake AMSI Provider which can be used for persistence.☆141Updated 3 years ago
- Koppeling x Metatwin x LazySign☆205Updated 3 years ago
- Weaponising C# - Fundamentals Training Content☆70Updated 3 years ago
- Copy the properties and groups of a user from neo4j (bloodhound) to create an identical golden ticket.☆83Updated 8 months ago
- Bypassing AppLocker with C#☆137Updated 3 years ago
- ☆138Updated 2 years ago
- Artificially inflate a given binary to exceed common EDR file size limits. Can be used to bypass common EDR.☆119Updated 2 years ago
- Tool for issuing manual LDAP queries which offers bofhound compatible output☆51Updated 7 months ago
- ☆83Updated 3 years ago
- ☆83Updated 2 years ago
- Slide decks and/or materials from conference presentations☆55Updated 2 years ago
- ☆110Updated 3 years ago
- Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from mem…☆111Updated last year
- A recreation of the "Nobelium" malware based on Microsofts Malware analysis - Part 1: PDF2Pwn☆100Updated last year
- Investigation about ACL abusing for Active Directory Certificate Services (AD CS)☆118Updated 3 years ago
- Simple BOF to read the protection level of a process☆114Updated last year
- Hookers are cooler than patches.☆168Updated 2 years ago
- Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later☆91Updated last year
- A C# tool to output crackable DPAPI hashes from user MasterKeys☆132Updated 4 months ago
- Tool for working with Direct System Calls in Cobalt Strike's Beacon Object Files (BOF) via Syswhispers2☆179Updated 2 years ago
- UI for creating LNKs☆96Updated 3 years ago
- ☆70Updated last year
- OffensivePipeline allows to download, compile (without Visual Studio) and obfuscate C# tools for Red Team exercises.☆90Updated 2 years ago
- Proof of Concept code and samples presenting emerging threat of MSI installer files.☆78Updated 2 years ago
- Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post☆88Updated 2 years ago
- A module for CME that spiders across a domain.☆35Updated 2 years ago
- ☆111Updated last year